Airline Apps Could Have More Information Than You Realize

Published:

spot_img

Investigation into Sensitive Permissions of Popular Airline Apps: Cybernews Research

Cybernews research has uncovered concerning findings about popular airline apps and their access to sensitive data on travelers’ devices. With the increasing reliance on airline apps for check-ins, ticketing, and booking services, the potential privacy risks and cybersecurity threats are becoming more apparent.

Recent incidents, such as the ransomware attack on AirAsia in 2022, where data of over five million passengers and employees was stolen, highlight the vulnerabilities in airline app security. The National Cyber Security Agency in Malaysia is currently investigating another breach claim on AirAsia by a threat actor.

To shed light on the data collection practices of airline apps, Cybernews conducted an investigation into 14 popular aviation apps. The research revealed that many of these apps have access to sensitive information on users’ devices, including location, camera, storage, phone state, microphone, contacts, accounts, messages, and calls.

While some airlines disclosed the data they collect and the reasons for it, others did not provide clear information on their data collection practices. This lack of transparency raises concerns about user privacy and data security.

Cybernews advises users to review app permissions carefully before granting access and to be cautious about apps that request unnecessary permissions. By staying informed and vigilant, users can protect their data and ensure a safer digital experience while using airline apps.

spot_img

Related articles

Recent articles

Project CAV3RN Expands Espionage Capabilities with Google Apps Script in Israel

Project CAV3RN, a modular espionage framework targeting entities in Israel, has recently expanded its capabilities by integrating Google Apps Script into its command and...

Red Hat releases important security update for gstreamer1-plugins-bad-free in RHEL 8.6

Red Hat has announced an important security update for the gstreamer1-plugins-bad-free package, applicable to Red Hat Enterprise Linux (RHEL) 8.6 Advanced Mission Critical Update...

Flaw in OpenAI, Anthropic, and Google APIs Allows Weaker AI Models to Decode Stronger Models’ Reasoning

A newly disclosed flaw in the APIs of OpenAI, Anthropic, and Google has raised significant security concerns, allowing researchers to recover internal reasoning and...

Cyberattacks Target North Carolina Ports and Ryde, Exposing Millions of Records

In a week marked by significant cyber incidents, the cybersecurity landscape has seen notable attacks targeting critical infrastructure and major companies. The latest Threat...